Vulnerabilities > Intel > High

DATE CVE VULNERABILITY TITLE RISK
2020-05-14 CVE-2020-0110 Out-of-bounds Write vulnerability in multiple products
In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google intel CWE-787
7.8
2020-04-15 CVE-2020-0600 Unspecified vulnerability in Intel products
Improper buffer restrictions in firmware for some Intel(R) NUC may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
7.8
2020-04-15 CVE-2020-0598 Untrusted Search Path vulnerability in Intel Binary Configuration Tool
Uncontrolled search path in the installer for the Intel(R) Binary Configuration Tool for Windows, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-426
7.8
2020-04-15 CVE-2020-0578 Unspecified vulnerability in Intel Compute Module Mfs2600Ki Firmware
Improper conditions check for Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel
8.8
2020-04-15 CVE-2020-0577 Unspecified vulnerability in Intel Compute Module Mfs2600Ki Firmware
Insufficient control flow for Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.
low complexity
intel
8.8
2020-04-15 CVE-2020-0557 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Proset/Wireless Wifi
Insecure inherited permissions in Intel(R) PROSet/Wireless WiFi products before version 21.70 on Windows 10 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
7.8
2020-04-15 CVE-2020-0547 Incorrect Default Permissions vulnerability in Intel Data Migration 3.3
Incorrect default permissions in the installer for Intel(R) Data Migration Software versions 3.3 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2020-03-12 CVE-2020-0583 Unspecified vulnerability in Intel Smart Sound Technology 3349/3431
Improper access control in the subsystem for Intel(R) Smart Sound Technology may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel
8.8
2020-03-12 CVE-2020-0565 Uncontrolled Search Path Element vulnerability in Intel Graphics Driver
Uncontrolled search path in Intel(R) Graphics Drivers before version 26.20.100.7158 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-427
7.8
2020-03-12 CVE-2020-0546 Unquoted Search Path or Element vulnerability in Intel Optane DC Persistent Memory Module Management 01.00.00.3455
Unquoted service path in Intel(R) Optane(TM) DC Persistent Memory Module Management Software before version 1.0.0.3461 may allow an authenticated user to potentially enable escalation of privilege and denial of service via local access.
local
low complexity
intel CWE-428
7.8